
from xalgorix598
Designs and documents a ransomware-resilient backup architecture (3-2-1-1-0), immutability, credential isolation and automated restore testing aligned to RPO/RT
Provides a practical, security-focused playbook for implementing ransomware-resilient backups. The skill walks through asset classification, 3-2-1-1-0 architecture, immutable storage configuration, backup credential isolation, and automated restore verification.
Use when designing or auditing backup systems for ransomware resilience, meeting cyber-insurance requirements, migrating to immutable storage (S3 Object Lock, Veeam Hardened Repo), or establishing automated restore testing. Not a replacement for full IR planning.
Best for security engineering assistants and SREs (agents that can output runbooks, bash/aws/az commands and remediation checklists such as Copilot/GitHub Copilot or security-oriented Claude models).
This skill has not been reviewed by our automated audit pipeline yet.